Python and SLSA 💃
Supply chain Layers for Software Artifacts (SLSA) is a framework of tools to generate and verify provenance for software artifacts. In the Python ecosystem there are two main types of software artifacts: wheels and source distributions.
How can we use the SLSA framework to generate and verify the provenance of Python artifacts?
Source: Python and SLSA 💃, an article by Seth Michael Larson.